July  1989 


DCIEM  No.  89-RR-45 


QUEUING  THEORY  APPROACH 
TO  MODELLING  THE  DYNAMICS 
OF  THE  HUMAN-COMPUTER  INTERFACE 


J.M.E.  van  de  Vegte 


Defence  and  Civil  Institute  of  Environmental  Medicine 
1133  Sheppard  Avenue  West 
P.O.  Box  2000 
North  York,  Ontario 


M3M3B9 


"distribution  STATEMENT~X 

Approved  for  public  release; 

Disiribitlion  Unlimited 


t  i  r* 

JLJ  5  k  W 


DEPARTMENT  OF  NATIONAL  DEFENCE  -  CANADA 


90  01  08  066 


Table  of  Contents 


Page 


Abstract  1 

1.  Introduction  2 

2.  Network  Instability  7 

3.  Single  Layer  Case  10 

4.  Multi-Layer  Case  1 1 

5.  Special  Case  -  Nodes  with  Equal  Service  Rates  12 

6.  Feedback  at  Lower  Levels  -  Simple  Case  1 5 

7.  Feedback  at  Lower  Levels  -  General  Case  20 

8.  Supporting  Simulations  22 

8.1  Example  of  Single  Layer  Interface  22 

8.2  Example  of  Nodes  with  Equal  Service  Rates  25 

8.3  Example  of  Two- Layer  Interface  with  Feedback  at  Each  Level  30 

9.  Conclusions  32 

10.  References  33 

Appendix  1  -  Jackson’s  Results  34 


Accession  For 
NTIS  GRA&I 
DTIC  TAB 
Unannounced 
Justlficatlo 


By_ 


Distribution/ 
Availability  Codes 
/Avail  and/or 
U>lst  I  Special 


-1- 


Abstract 

/ 

«* 

This  paper  studies  a  model  of  the  human-computer  interface  based  on  the  idea  of  a  message 
passing  from  one  partner  (the  human)  to  the  other  (the  computer)  by  means  of  an  arbitrary 
number  of  layers  which  represent  levels  of  abstraction  of  the  message.  The  model  uses  a 
queuing  theory  formulation  and  assumes  Poisson  arrival  and  service  characteristics  to 
describe  the  movement  of  packets  through  the  interface  and  to  develop  a  criterion  for  net¬ 
work  stability.  Simulations  are  included  to  illustrate  some  of  the  theoretical  results  obta.ned. 


-2- 


QUEUING  THEORY  APPROACH  TO  MODELLING  THE  DYNAMICS 
OF  THE  HUMAN-COMPUTER  INTERFACE 


I.  Introduction 

The  human-computer  interface  may  be  modelled  as  a  generator,  a  sender,  a  trans¬ 
mitter,  and  a  receiver  of  information-carrying  packets  called  messages,  with  feedback  pos¬ 
sible  in  the  case  of  a  message  received  in  error.  This  set  of  operators  is  shown  in  Figure  1.1, 
where  G  is  the  message  generator,  Es  is  the  encoder  of  the  message  sender,  Tp  is  the  forward 
transmitter,  DR  is  the  decoder  of  the  message  receiver,  Er  is  the  encoder  of  the  message 
receiver,  Tr  is  the  reverse  transmitter,  D$  is  the  decoder  of  the  message  sender,  and  O  repre¬ 
sents  the  point  at  which  messages  exit  from  the  network.  A  message  generated  at  G  is  coded 
in  some  manner  at  Es  and  then  transmitted.  Subsequent  messages  arriving  at  Es  (or  any 
other  node)  must  wait  for  the  current  message  to  be  completely  served.  Messages  that  are 
received  at  Dr  are  decoded.  If  they  are  understood,  they  pass  to  O  and  leave  the  system.  If 
there  is  ambiguity,  error  messages  are  fed  back  to  the  sender  via  the  feedback  path:  First,  an 
error  message  coded  at  Er  is  transmitted  to  D$  where  it  is  decoded.  Then  a  new  message  is 
coded  at  Eg  to  resolve  the  ambiguity,  and  the  cycle  repeats  itself. 

As  an  example  from  an  actual  human-computer  interchange,  imagine  a  person  sit¬ 
ting  at  a  terminal  who  wishes  to  change  the  computer  directory  in  which  he  is  working.  He 
codes  and  transmits  this  intention  by  typing  on  his  keyboard:  cd  filex  (change  directory  to 
the  directory  called  filex).  In  fact,  this  person  only  has  two  directories  available  to  him:  mail 
and  files.  Therefore,  the  message  received  by  the  computer  is  erroneous  and  the  user’s  com¬ 
mand  is  not  carried  out.  To  correct  the  problem,  the  computer  gives  feedback  by  coding  and 
transmitting  to  the  screen  the  message:  No  such  directory.  Did  you  mean  “ cd  files”?.  The 
person  responds  with  yes  and  finally  the  original  message  successfully  reaches  the  computer. 
The  working  directory  is  changed  to  files. 

In  this  type  of  scenario,  new  messages  must  wait  for  service  at  each  service  centre 
(or  “node”)  in  Figure  1.1,  and  the  service  at  each  node  takes  some  finite  amount  of  time  to 
perform.  In  view  of  these  facts,  a  queuing  theory  model  seems  a  natural  choice.  By  using 
such  a  model  it  becomes  possible  to  estimate  how  many  messages  must  wait  for  service  at  a 


-3- 


1 


given  node  and  how  long  they  must  wait.  Thus,  a  queuing  theory  model  of  a  human-com¬ 
puter  interface  may  to  some  extent  allow  prediction  of  the  conditions  which  can  lead  to  com¬ 
munication  breakdown.  Queuing  theory  analysis  of  networks  of  queues  is  difficult,  though, 
and  the  general  network  flow  problem  is  of  current  research  interest.  However,  there  are  nice 
results  for  special  cases,  one  of  the  most  interesting  being  the  work  of  Jackson  (1). 


Figure  1.1  Model  of  the  Human-Computer  Interface 

In  Jackson’s  terminology,  a  network  consists  of  multiple  nodes  whose  intercon¬ 
nections  describe  the  progress  of  tasks,  packets,  messages  or  other  entities  through  the  net¬ 
work.  The  following  description  characterizes  an  “open”  Jackson  network  (paraphrased 
from  Giffin  (2)): 

1.  The  network  contains  more  than  one  service  centre  (or  “node”). 

2.  Each  service  centre  may  contain  multiple  servers,  allowing  multiple  queues,  with 
each  server  at  the  centre  having  an  identical  exponential  service  time  distribution.  A  server 
is  assumed  to  process  only  one  message  at  a  time. 

3.  Arrivals  at  any  given  node  may  come  from  outside  the  system,  or  from  other  nodes  in 
the  network. 

4.  Arrivals  from  outside  the  network  occur  in  Poisson  fashion. 

5.  When  a  message  completes  service  at  a  particular  centre,  it  may  leave  the  system,  or 
be  routed  to  another  centre,  its  path  being  controlled  by  a  fixed  probability  distribution  asso¬ 
ciated  with  the  node  it  is  leaving. 

6.  Queues  of  unlimited  length  are  allowed  at  each  node. 


7. 


Total  arrival  rate  at  each  node  must  be  less  than  the  potential  service  rate  at  that  node. 


Note  that  feedback  from  a  network  node  to  a  previous  node  is  permitted.  (Closed  Jackson 
networks  imply  that  a  message  never  leaves  the  network.) 

It  is  possible  to  formulate  the  model  of  the  human-computer  interface  in  terms  of 
an  open  Jackson  network,  given  that  the  distributions  of  arrival  and  service  times  may  rea¬ 
sonably  be  assumed  to  be  exponential.  (This  assumption  must  be  tested  experimentally  for 
real  interfaces.)  The  message  error  rate,  E,  is  modelled  by  requiring  that  a  proportion  E  of 
the  messages  entering  the  network  be  fed  back  from  Dr  to  be  corrected,  while  a  proportion 
(1-E)  leaves  the  network  after  first  arrival  at  Dr. 

When  Poisson/exponential  streams  are  assumed,  three  interesting  properties  apply 

(2): 

1.  Combining  independent  Poisson  streams  produces  a  Poisson  stream,  with  a  mean 
arrival  rate  equal  to  the  sum  of  the  means  of  the  arrival  rates  of  the  input  streams.  If  two 
Poisson  streams  are  described  by 

-X,  M 

p(Xj  =x)  =  e  *  -— 

P(X2  =  x)  =  e  **  —y 
x! 

then  their  characteristic  functions  are  (Fisz  (3,  108-112))  (the  notation  E[.]  refers  to  mathe¬ 
matical  expectation  and  is  not  related  to  E  the  message  error  rate): 

<J>!  (t)  =  E  [eitX‘  ]  =  e^6"  “ 1)1 

d>2(t)  =  E[eilXz]=e^(ci,-1)1  . 

Since  the  streams  are  independent,  the  characteristic  function  of  X  =  Xj  +  X2  is 
<K0  =  E  [eitX]  =  E  [eilXl  ]  E  [eil*2J 

—  c  c 

_  [(X,  +X2)(ei,-1)] 
c 

which  is  the  characteristic  function  of  a  Poisson  process  of  mean  Xj  +  X2. 


-5- 


2.  Splitting  a  Poisson  stream  of  mean  arrival  rate  X  (events  per  unit  time)  into  several 
streams,  each  with  associated  probability  rj,  produces  output  streams  with  mean  rates  nX. 
This  property  may  be  demonstrated  using  the  multinomial  distribution  (2,  227).  Suppose  a 
Poisson  stream  splits  into  b  paths  and  the  probability  of  a  message  taking  path  i  is  rj.  Then 
after  m  messages  have  entered  the  original  stream,  the  probability  that  mj  messages  have 
passed  to  path  1,  m2  messages,  to  path  2,  and  so  on,  is  (according  to  the  multinomial  distribu¬ 
tion)  described  by 

p(mlt  ...,mb  |  m)  =  — ~ — -  r™1  ...rb  b 

mjL.mh! 

b  b 

where  £  irq  =m  and  £  r4  =  1.  The  Poisson  probability  of  getting  m  messages  after  t  sec- 
i=l  i=l 

onds  if  the  mean  rate  of  arrival  is  X  is 


p(m)  = 


(Xt)m  e~Xt 
m! 


Therefore, 


p(mlt  mb,  m)  = 


m! 


mi!...mb! 


ni; 


m,  mb  (Xt) 
ri  ...rb 


me-Xl 


ml 


=  n— (Xt)mi  e  r‘Xt 

r=fmi! 


This  joint  distribution  is  a  product  of  Poisson  distributions,  so  the  b  output  streams  are  each 
Poisson  with  mean  rates  rjX,i=l, b. 

3.  An  exponential  server  operating  on  a  Poisson  stream  produces  a  departure  process 
which  has  the  same  statistical  parameters  as  the  input  process.  To  see  this,  consider  a  node 
with  a  Poisson  arrival  stream  of  mean  X  and  an  exponential  service  distribution  of  mean  ja, 
with  the  density  function  of  the  arrival  stream  denoted  by  a(t)  and  service  stream,  by  s(t). 
Then  the  density  function  for  interarrival  times  is,  by  definition, 

a(t)  =  Xe~Xl 


and,  for  the  service  times, 
s(t)  =  ^e-^1  . 

Suppose  a  message  leaving  the  node  leaves  behind  other  messages  in  a  queue.  Then  the  time 


-6- 


until  the  next  message  leaves  will  be  exponentially  distributed  due  to  the  service  time  at  the 
node.  Therefore,  the  Laplace  transform  of  the  departure  time  distribution,  d(t),  given  a  non¬ 
zero  queue  at  the  node,  is 

L(d(t)  I  m>0)  =  -  -1-  . 

Pi  +s 

If,  on  the  other  hand,  the  original  message  leaves  no  subsequent  messages  in  a  queue,  then 
the  next  departure  from  the  node  will  not  occur  until  an  arrival  has  occurred,  and  the  arrival 
has  been  serviced.  Thus,  in  this  case,  the  Laplace  transform  of  the  distribution  of  departure 
times  is 


L(d(t)  I  m=0)  = 


X 

X  +  s 


From  the  properties  of  the  node  (Gross  and  Harris  (4, 58-73)), 

pr(m>0)  =  — 

p 

and 

pr(m=0)  =  1  -  —  . 

P 

Combining  the  two  cases  gives 

L(d(t))  =  L(d(t)  I  m>0)  pr(m>0)  +  L(d(t)  I  m=0)  pr(m=0) 

X 

X  +  s 

Inverting  this  Laplace  transform  gives 
d(t)  =  Xe-Xt 

which  is  the  same  interarrival  time  distribution  as  at  the  first  node.  Exponential  service  has 
not  altered  the  Poisson  stream. 


Using  the  method  of  steady-state  balance  equations,  Jackson  (1)  was  able  to  show 
that  the  joint  probability  distribution  of  a  network  of  queues  could  be  expressed  as  a  product 
of  marginal  M/M/c  distributions.  (The  notation  refers  to  input  distribution/service  distribu¬ 
tion/number  of  servers  per  node.  In  this  case,  M  refers  to  the  exponential  distribution,  where 


-7- 


M  stands  for  Markovian,  and  c  indicates  that  there  are  c  servers  per  node.)  This  result 
implies  that  the  network  acts  as  if  each  node  were  an  independent  M/M/c  queue,  with  param¬ 
eters  Xj  (arrival  rate  at  node  i)  and  p,  (service  rate  at  node  i).  When  the  flow  is  strictly  feed¬ 
forward,  the  properties  of  stream  combination  and  splitting  described  above  apply,  and  all  of 
the  internal  flows  in  the  network  are  in  fact  Poisson.  However,  when  there  is  feedback  in  the 
network,  the  internal  flows  are  not  Poisson.  Jackson’s  result  is  interesting  because,  whether 
the  internal  flows  are  Poisson  or  not,  the  network  still  behaves  as  if  its  nodes  are  independent 
M/M/1 ’s. 


Appendix  1  contains  the  details  of  Jackson’s  equations  for  queue  length  and  wait¬ 
ing  time.  The  result  that  is  important  for  this  paper  is  that,  when  only  a  single  server  is  avail¬ 
able  at  any  node  in  the  network,  the  expected  queue  length  at  node  i  is 


(1.1) 


where  k5  =  ej/p;,  ej  is  the  effective  arrival  rate  at  node  i  from  all  sources  and  p;  is  the  service 
rate  at  node  i. 


2.  Network  Instability 


When  network  conditions  are  such  that  increasingly  large  queues  form  at  the  ser¬ 
vice  nodes  in  the  network,  the  chance  of  instability  or  blocking  increases.  Suppose  A.  is  the 
arrival  rate  at  a  given  node  and  p  is  the  service  rate  at  that  node.  Then  there  are  in  general 
three  cases  to  consider  for  stationary  problems:  p>A,  p=A,  p<A. 

Case  1:  p>A 

This  is  the  standard  case  in  which  service  rate  exceeds  arrival  rate  at  a  given  node, 
and  the  (finite)  equilibrium  queue  may  be  computed  as  described  in  the  previous 
section  (see  equation  (1.1)). 

When  queues  are  fairly  long,  it  is  possible  to  obtain  approximate  results  for  cases 
1,  2  and  3  by  applying  a  diffusion  approximation,  described  in  detail  in  Newell  (5).  The  dif¬ 
fusion  approximation  employs  a  differential  equation  formulation  which  allows  a  description 


-8- 


of  a  system’s  local  behaviour,  and  which  facilitates  the  treatment  of  boundary  conditions.  In 
particular,  applying  the  approximation  to  a  physical  system  requires  that  the  system  be 
smooth  in  the  sense  that,  for  a  small  change  in  time,  the  position  (or  other  quantity  of  inter¬ 
est)  changes  from  x  to  x+dx,  with  dx  arbitrarily  small.  In  queuing  theory  applications,  x  rep¬ 
resents  queue  length,  which  must  be  integer.  Thus,  it  is  not  possible  to  speak  of  infinitesimal 
queue  changes.  It  is  possible,  however,  to  postulate  a  coarse  scale  of  measurement  for  queue 
length  on  which  only  small  changes  in  queue  length  occur  during  small  changes  in  time. 
Naturally,  in  order  to  allow  such  a  scale  to  be  used,  queue  lengths  must  be  relatively  large. 

The  equation 

Q(t+D  -  Q(t)  =  [A(t+T)  -  A(t)]  -  [D(t+t)  -  D(t)]  (2.!) 

where  Q(t)  is  the  queue  length  at  time  t,  A(t)  is  the  cumulative  number  of  arrivals  at  time  t, 
and  D(t)  is  the  cumulative  number  of  departures  at  time  t  describes  the  evolution  of  the  queue 
in  time,  assuming  that  arrival  and  departure  processes  do  not  depend  on  queue  length,  when 
the  queue  is  not  empty.  To  allow  (2.1)  to  be  formulated  as  a  differential  equation,  the  queue 
length  Q(t)  must  be  measured  on  a  sufficiently  coarse  scale  as  described  above.  That  is,  t 
must  be  small  enough  that  Q(t+x)  -  Q(t)  is  very  small  (on  the  coarse  scale  of  measurement), 
yet  sufficiently  large  that  this  queue  length  change  is  large  relative  to  the  individual  message 
(integer)  scale  of  measurement.  If  many  individual  events  do  take  place  between  t  and  t+x, 
Q(t+x)  -  Q(t)  may  be  taken  to  be  approximately  normally  distributed  for  any  reasonable  arri¬ 
val  and  departure  process  (5,  103).  In  fact,  as  detailed  in  Newell  (5),  using  the  diffusion 
approximation  produces  the  time-dependent  diffusion  equation 

= -  w.)  -  m  ^ (2.2) 

dt  dx  2 

where  f(x,t)  is  the  probability  density  of  Q(t)  at  x,  ?i(t)  is  the  arrival  process,  and  p(t)  is  the 
service  process.  Manipulations  of  equation  (2.2)  under  the  various  conditions  of  cases  1 ,  2 
and  3  provide  the  following  mean  queue  lengths  (5). 

Case  2:  p=X. 

Use  of  the  diffusion  approximation  for  this  case  gives  (5) 

I1/2 

Lq(t)  =  EfQ(t)]  =  —  — ^  .  (2.3) 

L  n 


-9- 


Case3:  p<A, 

In  this  case  (5) 

Lq(t)  =  E[Q(t)]  =  Q0  + 1  +  ye_Q°  (2.4) 

where  Q0  is  the  initial  queue. 


Applying  the  diffusion  approximation  to  case  1  provides  an  indication  of  its 
merit.  Newell  finds  that  for  |1>X.  the  expected  queue  is 

_  1 +A/P- 
q  2H-X/H)  ‘ 

Letting  k  =  A/|i, 


1  + 


2(1 -k)  ’ 


(2.5) 


which  is  the  diffusion  approximation  corresponding  to  equation  (1.1).  As  Figure  2.1  shows, 
the  diffusion  approximation  is  excellent  for  case  1 . 


Figure  2.1  Diffusion  Approximation  of  the  Steady-State  Queue 


In  cases  2  and  3,  where  p  <  X,  the  queues  will  grow  without  bound  as  time 
increases.  In  case  2,  the  growth  is  proportional  to  t1^2;  in  case  3,  to  t.  In  fact,  even  in  case  1, 


-10- 


queue  lengths  become  very  large  when  k— >1.  In  a  network  such  as  the  one  depicted  in  Figure 
1.1,  the  accumulation  of  a  large  queue  at  any  one  node  affects  the  performance  of  the  entire 
network.  In  fact,  a  complete  cessation  of  communication  occurs  when  messages  are  blocked 
at  a  node  because  »arge  queues  have  formed  there,  effectively  severing  the  communication 
channel.  This  circumstance  is  referred  to  as  instability  or  blocking  of  the  network,  which 
may  occur  whenever  the  arrival  rate  is  greater  than  or  equal  to  the  service  rate  (k>l)  at  any 
node  in  the  network. 


3.  Single  Layer  Case 


1 


> 


Consider  a  cyclic  network  like  the  one  in  Figure  1.1,  but  which  neglects  transmis¬ 
sion  delays.  This  network,  shown  in  Figure  3.1,  has  a  message  arrival  rate  X  and  an  error  rate 
E.  The  error  rate  E  is  the  probability  that  a  message  received  at  node  2  will  be  in  error  and 
will  require  feedback  for  correction.  In  this  case,  the  message  passes  to  node  3.  Conse- 
q'  ently,  there  is  a  (1-E)  probability  that  a  message  will  be  received  correctly  at  node  2  and 
will  leave  the  network  after  only  a  single  transmission.  The  node  numbers  represent  the  fol¬ 
lowing  service  centres. 


Node  Number  Node  Name 

1  Source  Encoder 

2  Receiver  Decoder 

3  Receiver  Encoder 

4  Source  Decoder 


As  indicated  in  section  2,  instability  is  considered  to  occur  when  the  steady-state 
queue  becomes  infinite,  for  any  of  the  nodes  in  the  network.  In  Figure  3.1,  packet  flow  rates 
are  given  for  the  network  of  Figure  1.1.  Total  flow  into  a  node  equals  flow  out  of  that  node, 


so,  as  Figure  3.1  shows,  the  effective  message  flow  into  the  network  nodes  is  either 


X 

1-E 


or 


EX 

1-E' 


Thus  instability  may  occur  whenever  any  of  the  following  inequalities  hold  (assuming 


that  the  service  rate  at  each  node  exceeds  the  effective  arrival  rate): 


ki  = 


liid-E) 


>1 


* 


By  solving  for  E,  the  condition  on  E  for  possible  network  instability  may  be  calculated. 


E  >  min 


X_  M3  M-4 

Hi’  1*2  ’  H3+*-’  P4+*- 


(3.1) 


where  i=l,  2,  3,  4  are  the  service  rates  for  each  of  the  nodes,  and  X  is  the  external  mes¬ 
sage  arrival  rate. 


Figure  3.1  Queuing  Model  of  a  Single  Layer  Interface 
4.  Multi-Layer  Case 

It  is  possible  to  generalize  the  single  layer  result.  Figure  4.1  shows  a  multi-layer 
version  in  which  virtual  high  level  messages  are  in  reality  sent  via  lower  level  transport 
processes.  For  example,  sentences  are  actually  passed  between  partners  by  means  of  words, 
words  by  phonemes,  and  phonemes  by  sound  waves.  (The  more  general  construction,  corre¬ 
sponding  to  Taylor’s  Layered  Protocols  framework  (Taylor  (6)),  will  be  considered  below  in 
section  7.) 

Following  the  same  type  of  derivation  as  above,  and  using  the  same  notation, 
gives  the  following  result,  which  characterizes  the  region  over  which  instability  can  occur  at 


-12- 


the  interface,  in  terms  of  the  probability  of  error  at  the  top  level  receiver  decoder. 

(4.1) 

where  nf  is  the  number  of  nodes  in  the  forward  transmission  message  path,  and  nr  is  the  num¬ 
ber  of  nodes  in  the  reverse  (feedback)  transmission  message  path. 


E  >  min 


min 

.-A 

,  min 

Mj 

ienf 

M'i  . 

jen, 

Figure  4.1  Queuing  Model  of  a  Multi-Layer  Interface 


5.  Special  Case  -  Nodes  with  Equal  Service  Rates 

When  all  the  nodes  in  the  network  of  Figure  4.1  have  equal  service  rates,  that  is, 
|i;  =  |i  ,i  =  1,...,  N,  the  condition  for  instability  (equation  (4.1)),  simplifies  to 

1  _  A  _iL_ 

4  ’  X+n  ' 


E  >  min 


-13- 


The  two  quantities  1  -  —  and  may  be  compared  directly  (by  using  a  common  denomi- 

^  X 

nator  of  p(p  +  X))  to  show  that  — ~  >  1  -  — ,  so  for  the  special  case  in  which  all  nodes  in 

p+X  1 1 

the  network  have  the  same  service  rates,  the  condition  for  instability  is  E  >  1  -  X/p .  Note 
that  when  p  <  X,  large  queues  are  guaranteed  to  form,  making  blocking  a  certainty.  Figure 
5.1  shows  the  regions  of  stability  and  instability  for  this  type  of  network.  The  surfaces  del¬ 
imiting  the  region  of  instability  include:  a  flat  surface  at  E=0  for  p<X,  and  a  curved  surface 
for  p>X.  Below  these  limiting  surfaces  is  a  region  of  network  stability;  above  them,  instabil¬ 
ity  may  occur. 


Figure  5.1  Regions  of  Instability  for  Networks  of  Nodes 
with  Equal  Service  Rates 

The  shape  of  the  stability  regions  may  be  more  obvious  in  Figures  5.2  and  5.3, 
where  cuts  at  constant  service  and  arrival  rates  are  shown.  First,  at  cross-sections  of  constant 
p  (Figure  5.2),  the  criterion  for  instability  decreases  linearly  with  X.  That  is,  for  a  given  ser¬ 
vice  rate,  the  higher  the  arrival  rate,  the  more  easily  instability  can  occur. 

Slices  of  Figure  5.1  at  constant  X  are  shown  in  Figure  5.3.  The  curves  increase 
rapidly  when  p  is  only  slightly  larger  than  X,  but  then  increases  very  slowly  for  p  »  X,  limit¬ 
ing  at  E=1  for  p  — » Thus,  for  a  given  arrival  rate,  the  higher  the  service  rate,  the  less 


i 


-14- 


likely  instability  will  occur,  but  only  minor  improvements  are  obtained  by  raising  p  beyond 
about  four  to  eight  times  X. 


Figure  5.2  Cross-Sections  of  Figure  5.1  at  Constant  Service  Rates 


Figure  5.3  Cross-Sections  of  Figure  5.1  at  Constant  Arrival  Rates 


-15- 


6.  Feedback  at  Lower  Levels  -  Simple  Case 

In  order  to  avoid  problems  of  instability,  it  is  normally  good  practice  to  eliminate 
all  but  the  simplest  and  fastest  feedback  at  the  lower  levels,  where  messages  may  be  broken 
down  into  words,  gestures,  or  letters.  For  example,  if  a  slow  complicated  error  correction 
scheme  is  used  at  the  word  level,  several  new  words  will  be  missed  each  time  a  word  needs 
to  be  corrected.  This  creates  new  errors  and  the  number  of  words  requiring  correction 
increases  dramatically.  Ultimately  blocking  occurs,  and  no  more  higher  level  messages  (such 
as  sentences)  are  able  to  pass  across  the  interface.  The  greater  the  delays  at  these  lower  lev¬ 
els,  the  greater  the  delays  perceived  by  the  operator  at  the  highest  levels,  and  the  longer  the 
tails  of  the  exponential  distribution  describing  the  overall  system  delay,  the  greater  the 
chance  for  instability.  This  may  be  seen  from  the  following  expression  for  the  probability 
distribution  of  the  total  waiting  time  required  by  a  message  to  pass  completely  through  the 
network,  due  to  Nelson  (7).  Nelson  gives  the  results  for  the  multi-channel  case.  Here,  they 
are  simplified  to  the  single  channel  case,  that  is,  one  server  per  node.  The  quantity  Lj  is  the 
probability  that  there  are  one  or  more  messages  at  node  j  and  hence  that  new  arrivals  will 
have  to  wait.  The  cumulative  probability  distribution  is 


N 

XXj£t 

lj=l 


N 

=  l-£Aje 

j= 1 


Bjt 


where  ej  is  taken  from  Appendix  1, 

Bj  =  ej  -  p.j 


(6.1) 


(6.2) 


1 

(l-ej/Pj)2 


(6.3) 


Aj=Lj 


N  1  -LkBi 

n — — 

lS  Bj-Bk 


,  j  =  1,...,  N 


(6.4) 


-16- 


When  service  rates  are  high,  p.j  :»  ej,  the  Bj  become  very  large  negative  numbers, 
shortening  the  tails  of  the  probability  distribution  described  by  equation  (6.1).  As  the  service 
at  lower  levels  becomes  poorer,  that  is,  the  service  rate  is  not  much  greater  than  the  arrival 
rate,  the  Bj  tend  towards  zero,  so  the  probability  that  the  total  waiting  time  is  less  than  some 
given  time  t  becomes  very  small  (see  equation  (6.1)).  Thus,  the  tail  of  the  cumulative  proba¬ 
bility  distribution  becomes  longer,  and  the  average  time  spent  in  the  network  becomes 
greater.  At  the  highest  levels,  longer  delays  increase  the  chances  of  creating  queues  at  the 
service  nodes,  and  hence  the  chance  of  interface  instability,  because  the  stability  thresholds 
for  the  error  rates  drop. 

The  following  derivation  treats  the  case  of  a  two  level  network,  with  feedback  at 
both  layers.  Errors  are  now  given  a  subscript  corresponding  to  the  number  of  the  layer  with 
which  they  are  associated.  The  error  parameters  represent  the  chance  that  an  error  will  occur 
at  that  level,  or  equivalently,  the  chance  that  a  detected  error  will  be  dealt  with  at  that  layer’s 
level  of  description,  for  example,  words  or  letters.  Thus,  at  the  top  level  (layer  1),  Ej  is  the 
probability  that  a  message  will  be  found  to  be  in  error  at  node  2  and  will  be  fed  back  via  node 
3.  At  the  lower  level  (layer  2),  E2  is  the  probability  that  a  message  received  in  error  at  node 
6  will  be  corrected  by  feedback  at  layer  2  and  will  be  passed  directly  to  node  7.  Figure  6. 1 
depicts  the  construction  of  this  system.  The  nodes  shown  in  the  figure  are  defined  as  follows: 


Node  Number 

Layer 

Node  Name 

1 

1 

Source  Encoder 

2 

1 

Receiver  Decoder 

3 

1 

Receiver  Encoder 

4 

1 

Source  Decoder 

5 

2 

Source  Encoder 

6 

2 

Receiver  Decoder 

7 

2 

Receiver  Encoder 

8 

2 

Source  Decoder 

-17- 


The  internal  flows  are: 

From  Node  To  Node 


Flow 


1 

5 

6 
2 

3 

7 

8 

4 
8 
6 


5 

6 
2 

3 

7 

8 

4 
1 

5 
7 


t=et 

A. 

(1-E,)(1-E2) 

X 

1-E, 

E,X 

T=ET 

E,\ 

1-E, 

E,Jt  E2X 

rar+  (i-e,xi-e2) 
E,X 

TeT 

E,X 

TST 

E,X 

d-Eod-ej 

e2x 


X 


Figure  6.1  Queuing  Model  of  a  Two-Layer  Interface 
with  Feedback  at  Each  Level 


I 


As  indicated  in  section  2,  the  conditions  for  instability  are  determined  by  using 
the  fact  that  flow  into  a  node  equals  flow  out  of  the  node  to  compute  the  ratio  of  effective 
arrival  rate  to  service  rate  for  each  node.  Instability  may  occur  when  kj  =ej/pj  >  1  for  any 


-18- 


node  i.  Note  that  conditions  on  both  Ej  and  E2  must  be  met  in  this  case.  The  first  four  nodes, 
at  the  top  level,  involve  only  conditions  on  Ej ,  while  the  last  four  nodes,  on  the  bottom  level, 
set  restrictions  on  both  Ej  and  E2.  In  other  words,  the  performance  criteria  for  the  messages 
of  interest  (at  the  top  level)  impose  restrictions  on  the  behaviour  of  the  supporting  channels. 


Node  I: 

k  _  e'  _  h.  - 1 


E,X 


E1X^p3-p3E1 

E!(X+P3)>M.3 


Hs(1-E,)(1-E2)  ~  1 
-A->  i-e,-e2(i-e,> 

E1+E2(l-E,)>  1-77- 

P5 


E2(1-E1)>1— -E, 

e=sTTT°-S-e‘) 


-19- 


E,  >  1— 


Node  6: 


E2>  1- 


X 


Node  7: 


E2X  Hj  X.  ^  f 

Ml-E,)(l-E2)  +  47(1-E,)  -1 
E2UE,X(1-E2) 

^•--OT-E^1 
X(E1+E2(1-E,))  _ 

47(7-E,)(i-E2)  -1 

Ei+E2(1-Ej)  ^  47 
(1-E,)(1-E2)  -X 


E2(l-E1)+E1  > 


47(1-E,)  47(1-E,)E2 


E2  I-E1+- 


47(1-E,)  ^  47(1-E,) 


Node  8: 


47  (1— Ej  )-XE, 


4g(l-E,)-XE1 


The  stability  of  the  network  in  Figure  6.1  may  be  tested  as  follows:  If  the  condi- 


^  ^  ,  X  t  X  43  to 

Ej  ^  min  1 - ,  1 - , - — , - — 

L  to  to  43 44+^J 

holds,  then  the  network  is  unstable.  Otherwise,  test  the  following  condition  on  E2: 

E  >min  1  X  X  47 (1— Ei )— X.E|  48(1-Ei)-XE] 

2  _  minj^i- 45 (1_e, )  ’  ~ M-6 ( 1— Ej )  ’  ^(l-EjJ+XO-E,)  ’  ^(l-EO+XO-Ej) 

If  the  condition  is  true,  then  the  network  is  unstable.  If  both  of  the  above  conditions  are 


-20- 


false,  the  network  of  queues  is  stable. 

It  is  interesting  to  observe  how  the  restrictions  on  E2  depend  on  those  on  Ej  (for 
nodes  5  through  8).  For  nodes  5  and  6,  the  form  of  the  restriction  on  E2  is 


E2  £  1- 


X 

mi-Eo  • 


For  nodes  7  and  8,  the  form  is 


H(1-Ei)-XEi 
2“  nd-EO+Xd-E,) 


E2> 


|i(l  /  Ej-1) 

1  +X/[L 


For  these  nodes,  as  Ej  increases,  the  limit  on  E2  decreases,  and,  as  Ej  decreases,  the  limit  on 
E2  increases.  Thus,  given  that  Ei  does  not  itself  cause  network  instabilities,  the  higher  the 
error  rate  at  the  top  level,  the  more  restricted  the  range  of  E2  over  which  stability  may  be 
maintained.  That  is,  the  higher. Ei,  the  more  easily  instability  may  occur  in  the  network. 
Conversely,  the  lower  Ei  is,  the  less  stringent  the  restrictions  on  E2  to  allow  stability  to  be 
maintained.  Intuitively,  there  exists  at  the  highest  level  a  need  to  pass  (virtual)  messages  at  a 
certain  rate  and  with  a  certain  error  probability.  To  support  this  performance  requirement, 
the  lower  level  channels  must  obey  restrictions  which  depend  on  the  arrival,  service,  and 
error  rates. 

Note  that  in  real  interfaces,  large  error  rates  at  lower  level  channels  would  be 
expected  to  cause  large  error  rates  at  the  higher  level  channels.  For  example,  if  many  of  the 
characters  being  typed  at  a  keyboard  are  received  incorrectly  by  a  computer,  it  is  likely  that 
very  few  commands  (which  are  made  up  of  these  characters)  will  be  correctly  interpreted. 


7.  Feedback  at  Lower  Levels  -  General  Case 


Figure  7.1  shows  the  general  case  for  networks  of  queues  involving  feedback  at 
lower  levels.  For  each  level  i,  the  error  rate  Ej  represents  the  probability  that  a  message  is 
received  in  error  and  is  corrected  by  feedback  at  that  level.  Table  7.1  gives  the  general 
expressions  for  the  network  flows,  k=  1, ....  n,  where  n  is  the  number  of  levels.  At  the 
lowest  level,  the  flow  from  source  side  to  receiver  side  follows  case  III,  and  the  flow  from 
receiver  side  to  source  side,  case  II. 


Figure  7.1  Queuing  Model  of  a  Multi-Layer  Interface 
with  Possible  Feedback  at  Every  Level 


Source  Side 

Receiver  Side 

Flow 

Across  level  k 

Across  level  k 

EkX 

( 1  — E, )...( 1— Ejj ) 

Up  into  level  k 

Down  out  of  level  k 

Down  out  of  level  k 

Up  into  level  k 

X 

(1-E,)...(l-Ek) 

Table  7.1  Network  Flows  for  Figure  8.1 


-22- 


With  kj  equal  to  e,/p.;  as  usual,  the  network  may  be  tested  for  potential  instability 
by  checking  for  the  cases  in  which  kj>l.  As  usual,  the  most  stringent  restriction  on  the  error 
rates  will  be  the  one  which  characterizes  the  stability  boundary  for  the  network. 

To  test  for  possible  instability,  start  at  the  highest  level,  and  evaluate  kj .  The  con¬ 
ditions  in  this  instance  depend  only  on  Ej.  If  stability  is  indicated  at  this  level,  continue  to 
level  two.  At  this  level,  the  condition  on  E2  appears  as  a  function  of  Ej .  If  the  conditions  for 
instability  are  not  met,  continue  to  the  subsequent  layers,  where  the  new  tests  will  be  func¬ 
tions  of  the  preceding  E;.  The  network  is  stable  if  none  of  the  Ej,  i=l,...,  n,  satisfy  the  condi¬ 
tions  for  instability. 

8.  Supporting  Simulations 

When  network  conditions  are  such  that  equilibrium  flows  and  network  stability 
exist,  steady-state  queues  may  be  calculated  using  equation  (1.1).  When  the  arrival  rate  at 
some  node  becomes  equal  to  the  service  rate,  equation  (2.3)  should  apply,  and  when  the  arri¬ 
val  rate  exceeds  the  service  rate,  equation  (2.4)  should  be  used.  As  noted,  however,  equa¬ 
tions  (2.3)  and  (2.4)  may  be  used  only  when  very  large  queues  are  being  considered,  which  is 
not  typically  the  case  for  the  movement  of  packet  messages  through  an  interface.  Thus,  dur¬ 
ing  the  simulation  of  this  application,  average  maximum  queues  are  compared  to  average 
final  queues.  When  the  maximum  queues  occur  on  average  at  the  end  of  the  simulations,  the 
network  is  deemed  to  be  unstable,  because  queues  at  network  nodes  are  growing  with  time. 
Illustrative  example  simulations,  produced  using  the  IBM  PC  simulation  package  Micro- 
Saint,  are  given  in  the  following  sections,  in  which  averages  were  taken  over  100  trials  of 
100  seconds  each. 


8.1  Example  of  Single  Layer  Interface 

As  an  example  for  section  3,  the  case  of  the  single  layer  interface,  the  following 
arrival  and  service  rates  were  used:  X  =  2.0,  p.j  =  4.0,  p.2  =  3.5,  p.3  =  4.0,  and  1 14  =  0.5  pack¬ 
ets/second.  According  to  the  results  of  section  3,  instability  should  occur  for 


E  >  min 


1111 

2  ’  7  ’  3  ’  5 


or,  E  >  0.2  . 


-23- 


To  test  the  theory,  simulations  were  run  for  E  =  0.1 , 0.2,  0.3,  0.5,  and  0.8.  Figure 
8.1.1  shows  the  results.  The  “1”  in  Figure  3.1  of  section  3  corresponds  to  the  Source 
Encoder;  the  ;‘2”,  to  the  Receiver  Decoder,  the  “3”,  to  the  Receiver  Encoder;  and  the  “4”, 
to  the  Source  Decoder. 


Error  Rate  E 


Figure  8.1.1  Average  Final  Queue  Lengths  for  the  Section  3  Example 

It  is  clear  from  Figure  8.1.1  that  the  largest  queue  forms  at  the  source  decoder,  a 
fact  that  is  perhaps  not  surprising  because  the  service  rate  is  so  low  at  that  node.  The  queue 
is  created  because  the  error  rate  is  such  that  equilibrium  is  no  longer  possible,  and  the  queue 
therefore  grows  without  bound.  Under  these  conditions,  steady-state  flows  between  other 
nodes  in  the  network  can  no  longer  be  said  to  exist,  so  the  pile-up  of  messages  at  the  source 
decoder  blocks  messages  from  cycling  through  the  rest  of  the  network.  Thus,  large  queues 
form  at  the  source  decoder,  but  nowhere  else. 

The  network  is  described  as  unstable  when  any  of  the  queues  associated  with  its 
constituent  nodes  grow  with  time,  even  after  transients  have  died  out.  In  this  example,  then,  it 
is  apparent  that  the  queue  at  the  source  decoder  governs  the  stability  of  the  network.  As 
mentioned  above,  the  simulation  data  can  show  the  network  leaving  equilibrium  when  the 
average  final  queue  length  approaches  the  average  maximum  queue.  This  approach  occurs 
when  there  is  reasonable  overlap  between  the  error  bars  of  the  two  curves.  The  greater  the 


-24- 


overlap,  or  the  closer  the  final  queue  length  is  to  the  maximum  queue  length,  the  more 
unstable  the  network. 

Figure  8.1.2  compares  the  average  maximum  queue  length  to  the  average  final 
queue  length  for  the  source  decoder.  Although  it  is  not  clear  on  the  figure,  the  data  for  the 
two  curves  at  E  =  0.1  are  0.86±1.74  for  the  final  queue  and  6.93±2.17  for  the  maximum 
queue,  so  there  is  a  very  small  probability  that  the  final  queue  length  indeed  represents  the 
maximum  at  this  small  error  rate.  For  this  case,  then,  a  steady-state  solution  may  be  com¬ 
puted  using  equation  (1.1)  (Lq  =0.36).  However,  there  is  considerable  error  bar  overlap  for 
all  E  >  0.2,  tending  to  indicate  that  no  equilibrium  solution  is  possible  for  these  cases.  That 
is,  as  the  error  rate  becomes  larger,  it  is  increasingly  likely  that  the  simulations  will  give 
average  maximum  queue  lengths  which  coincide  with  average  final  queue  lengths.  The  fact 
that  the  curves  approach  one  another  more  and  more  closely  as  E  increases  indicates  that  the 
network  is  becoming  increasingly  unstable  (blocked). 

The  first  evidence  of  instability  is  indeed  seen  at  an  error  rate  of  0.2  for  this  net¬ 
work,  supporting  the  theoretical  predictions. 


Queue 

Length 


Figure  8.1.2  Average  Maximum  and  Final  Queue  Lengths  for  Section  3  Example 

(Source  Decoder) 


8.2  Example  of  Nodes  with  Equal  Service  Rates 

In  section  5,  networks  of  nodes  with  equal  service  rates  were  examined.  Figures 
8.2.1  to  8.2.4  show  average  final  queue  lengths  for  a  single  layer  example  with  all  service 
rates  equal  to  2.0  packets/second,  and  arrival  rates  of  0.5,  1.0,  1.5,  and  2.0  packets/second. 

Clearly,  the  source  encoder  governs  the  stability  of  the  interface  since  the  longest 
queues  form  at  that  node.  Therefore,  the  effect  of  error  rate  is  investigated  for  the  source 
encoder  in  Figures  8.2.5  to  8.2.8  using  the  same  criteria  as  in  section  8.1.  Theory  predicts 
that  instability  will  occur  for 

E  >  1  -  V|i  , 
or, 

E  >  1  -  A/2  . 

Table  8.2.1  summarizes  the  predicted  minimum  error  rates  for  instability,  for  various  arrival 
rates. 


X 

Minimum  Error  Rate 

for  Instability 

0.5 

0.75 

1.0 

0.5 

1.5 

0.25 

2.0 

0.0 

Table  8.2.1  Predicted  Minimum  Error  Rates  for  Instability 


X  =  0.5 


-  Source  Encoder 

-  Receiver  Decoder 

. .  Receiver  Encoder 

A - A  Source  Decoder 


Error  Rate  E 


Figure  8.2.1  Average  Final  Queue  Lengths  for  X  =  0.5  (Section  5) 


Final 

Queue  49 . 


X  =  1.0 


-  Source  Encoder 

-  Receiver  Decoder 

.  Receiver  Encoder 

A - A  Source  Decoder 


Figure  8.2.3  Average  Final  Queue  Lengths  for  X  =  1.5  (Section  5) 


Figure  8.2.4  Average  Final  Queue  Lengths  for  X  =  2.0  (Section  5) 


Error  Rate  E 

Figure  8.2.5  Average  Maximum  and  Final  Queue  Lengths  for  X  =  0.5  (Section  5) 

(Source  Encoder) 


Error  Rate  E 

Figure  8.2.6  Average  Maximum  and  Final  Queue  Lengths  for  X  =  1.0  (Section  5) 

(Source  Encoder) 


Error  Rate  E 

Figure  8.2.7  Average  Maximum  and  Final  Queue  Lengths  for  X  =  1.5  (Section  5) 

(Source  Encoder) 


Error  Rate  E 

Figure  8.2.8  Average  Maximum  and  Final  Queue  Lengths  for  X  =  2.0  (Section  5) 

(Source  Encoder) 


-30- 


The  graphs  of  the  simulation  results  show  that,  in  general,  evidence  of  instability 
initially  becomes  apparent  at  the  error  rates  predicted  by  theory.  Also,  the  average  final 
queue  length  approaches  the  average  maximum  queue  length  more  and  more  closely  as  error 
rate  increases,  as  in  the  previous  section. 

8.3  Example  of  Two-Layer  Interface  with  Feedback  at  Each  Level  (Section  6) 


•  To  illustrate  the  results  of  section  6,  a  two-layer  network  with  feedback  was  simu¬ 
lated  using  the  following  data  (where  the  subscripts  correspond  to  those  defined  in  section  6): 

\  =  4  (8.3.1) 

•  Hi  =8,  p2  =6,  43  =4,  p4  =5 

p5  =6,  46  =  8,  47  =  12,  4s  =9 
Ej  =0.1,  E2  =0.1,  0.3,  0.5,  0.8 


Node  Number 

Layer 

Node  Name 

Arrival  Rate 

Service  Rate 

1 

1 

Source  Encoder 

4.44 

8.00 

2 

1 

Receiver  Decoder 

4.44 

6.00 

3 

1 

Receiver  Encoder 

0.444 

4.00 

4 

1 

Source  Decoder 

0.444 

5.00 

5 

2 

Source  Encoder 

4.93,  6.34,  8.88,  22.20 

6.00 

6 

2 

Receiver  Decoder 

4.93, 6.34,  8.88,  22.20 

8.00 

7 

2 

Receiver  Encoder 

0.932, 2.34,4.88, 18.20 

12.00 

8 

2 

Source  Decoder 

0.932, 2.34,4.88, 18.20 

9.00 

The  first  step  is  to  test  the  conditions  on  Ej,  the  error  rate  at  the  higher  level. 
Using  the  data  in  (8.3.1), 

1111 

2’  3’  2’  9 


Ej  >  min 


or,  Ei  >  1/3.  Since  Ej  =0.1,  no  blocking  problems  are  expected  due  to  this  level  of  error. 

The  second  step  is  to  test  the  conditions  on  E2: 

E2  >  min  [  0.259,  0.444,  0.722,  0.658  ] 

or,  E2  >  0.259.  According  to  the  theory,  then,  instability,  or  blocking,  would  be  expected  for 
any  E2  £  0.259. 

In  this  simulation,  when  blocking  occurs,  the  queues  which  block  the  network 
form  at  the  source  encoder  of  the  lower  level  (layer  2)  (see  Figure  8.3.1).  This  is  expected 
because  it  is  at  this  node  (node  5)  that  the  arrival  rate  first  exceeds  service  rate  (for  E2  =  0.3) 
and  where  the  difference  between  service  and  arrival  rates  is  greatest  as  the  error  rate  goes 
up.  Figure  8.3.2  compares  the  final  and  maximum  queue  lengths  for  this  node.  As  antici¬ 
pated,  the  first  symptoms  of  blocking  are  observed  for  Ej  =0.1  andE2  =0.3,  and  the  net¬ 
work  becomes  increasingly  unstable  as  the  error  rate  increases. 


300  -f 


200-4 


Final 

Queue 

Length 


100-^ 


0 


0.0 


-  Source  Encoded 

-  Receiver  Dccoderl 

.  Receiver  Encoder  1 

A - -A  Source  Dccoderl 

o - o  Source  Encoder2 

- - -  Receiver  Decoder2 

1* . 1  Receiver  Encoder2 

A . A  Source  Decoder2 


0.5 

Error  Rate  E 


Figure  8.3,1  Average  Final  Queue  Lengths  for  the  Section  6  Example 


300  4 


Figure  8.3.2  Average  Maximum  and  Final  Queue  Lengths  for  Section  6  Example 

(Source  Encoder  2) 


9.  Conclusions 

Using  Jackson’s  results  for  networks  of  nodes  having  Poisson  arrival  and  service 
distributions,  a  model  was  developed  to  describe  the  passage  of  messages  through  the 
human-computer  interface.  Messages  are  coded,  transmitted  and  decoded,  and  error  mes¬ 
sages  are  fed  back  when  there  is  some  ambiguity  in  the  understanding  of  the  message.  It  is 
necessary  to  test,  for  real  interfaces,  the  assumption  that  the  arrival  and  service  of  messages 
have  Poisson  characteristics.  Nevertheless,  the  stability  criterion  developed  in  this  paper 
should  provide  a  guide  for  interface  analysis  even  when  arrival  rates  are  not  strictly  Poisson. 

Furthermore,  the  model  described  can  be  used  to  judge  the  effect  of  allowing 
feedback  of  different  kinds  at  various  levels  of  the  interaction.  The  nature  of  the  feedback  at 
some  level  will  have  an  impact  on  the  service  rate  at  that  level,  which  will  affect  the  stability 
of  the  network  as  a  whole.  Thus,  the  model  allows  quantification  of  such  phrases  as  “elimi¬ 
nate  all  but  the  simplest  and  fastest  feedback  at  the  lower  levels”  by  setting  limits  on  the  arri¬ 
val,  service  and  error  rates  in  order  to  allow  stability  to  be  maintained. 


There  are  problems  associated  with  the  precise  measurement  of  interface  dynam¬ 
ics.  First,  the  timings  may  be  difficult  or  impossible  to  measure,  and,  second,  it  may  not  be 
possible  to  determine  the  error  rates  associated  with  the  layers  which  have  been  identified  in 
the  interface.  This  paper,  while  it  does  make  assumptions  about  the  arrival  and  service  of  the 
packet  messages,  provides  a  theoretical  technique  for  estimating  the  global  stability  of  a  net¬ 
work.  Moreover,  the  simulations  which  were  used  to  confirm  the  theoretical  results  showed 
that  stability  can  be  judged  to  some  extent  from  the  simulation  results  alone. 

10,  References 

1.  JACKSON,  J.R.  “Networks  of  Waiting  Lines.”  Operations  Research,  5:  518-521,  1957. 

2.  GIFFIN,  W.C.  Queuing:  Basic  Theory  And  Applications.  Grid,  Inc.,  Columbus,  Ohio, 
1978. 

3.  FISZ,  M.  Probability  Theory  and  Mathematical  Statistics.  John  Wiley  &  Sons,  Inc.,  New 
York,  1963. 

4.  GROSS,  D.  and  C.M.  HARRIS.  Fundamentals  of  Queueing  Theory,  Second  Edition. 
John  Wiley  &  Sons,  Inc.,  New  York,  1985. 

5.  NEWELL,  G.F.  Applications  of  Queueing  Theory,  G.F.  Newell,  Great  Britain,  1971. 

6.  TAYLOR,  M.M.  “Layered  Protocols  for  computer-human  dialogue.  I:  Principles.”  Int. 
J.  Man-Machine  Studies,  28:  175-218,  1988. 

7.  NELSON,  R.T.  “Waiting  Time  Distributions  for  Application  to  a  Series  of  Service 
Centers.”  Operations  Research,  6:  856-862,  1958. 


-34- 


Appendix  1  'Jackson’s  Results 

This  appendix  presents  Jackson’s  basic  results  (see,  for  example,  Giffin  (2)).  The 
following  notation  is  used: 

p(mi  ,m2,...,mN  ;  t)  =  probability  of  m;  messages  at  node  i  at  time  t 
(including  all  network  nodes) 
p(mi  ,ni2)...,mnj)  =  probability  of  m;  messages  at  node  i 
(including  all  network  nodes) 

Pi  (mi)  =  probability  of  m*  messages  at  node  i 
m;  =  number  of  messages  in  queue  at  node  i 
Xi  =  arrival  rate  at  node  i  due  to  externally  generated  demand 
e;  =  effective  arrival  rate  at  node  i  from  all  sources 
Hi  =  service  rate  per  server  at  node  i 
c;  =  number  of  servers  at  node  i 
Ty  =  probability  that  upon  completing  service  at  node  i, 

messages  will  go  node  j,  £  rij  =  1 

j 

N  =  number  of  nodes  in  the  network 

The  steady  state  flow  into  node  i  is  given  as 
N 

Cj  =  2 ^"ki  ®k  ’  t  =  1,  •••,  N 

k=l 

which  represents  the  flow  rates  from  external  sources  feeding  node  i  plus  the  internal  flow 
rates  from  other  nodes  in  the  network  which  feed  node  i.  The  steady-state  solution  shows  that 
the  final  equation  can  be  factored  into  a  product  of  marginal  probabilities: 

p  (miim2,....mN)  =  pj  (m^  p2(m2) ...  Pn(™n)  (A.l) 


-35- 


where 


Pi(m)  = 


Pt(Q)[ej/M-i  ]r 

m! 

Pi(Q)[ei/^j]r 

Ci![Cj]m_Ci 


)  m  0,  1 1  Cj 


,  m  >  c, 


Pi  (0)  = 


M*iT  +  rei/Mi]Ci 

m!  +  cj![l  -ej/CiJii] 


-l 


In  other  words,  the  lengths  of  the  queues  at  the  different  nodes  are  independent  of 
each  other.  At  steady-state,  the  mean  number  of  messages  in  the  input  queue  at  node  i,  the 
mean  number  of  messages  waiting  for  or  being  served  at  node  i,  the  expected  queue  time  at 
node  i,  and  the  expected  total  queuing  and  serving  time  may  be  computed  as  follows: 


Pi  (0)[ei/M.j]Ci  Cej/CjM-j] 
qi~  Cj![l  -ej/Ciiij]2 

Li  =  Lq.  +  ej/M-i 
=LqVei 

W,  =  Wq.  +  1/Hi 


(A. 2) 


give 


For  the  case  of  a  single  channel  per  node,  the  equation  Lq.  may  be  simplified  to 


Pi(0)  [ej/fj.;]2 
[1-ei/Pi]2 


(A. 3) 


v| 

Furthermore,  the  expression  for  pj(0)  becomes  [1  -e;/p.j].  Let  k,  =  — .  Then,  for  the  single 

Mi 

server  case, 


(A. 4) 


SICURITY  CLASSIFICATION  OF  FORM 
(highest  classification  of  Title,  Abstract,  Keywords) 


DOCUMENT  CONTROL  DATA 

(Security  classification  of  title,  body  of  ebetreet  and  indexing  annotation  must  be  entered  whan  the  overall  document  it  elattlf led) 


1.  ORIGINATOR  (the  name  and  address  of  the  organization  preparing  the  document  2.  SECURITY  CLASSIFICATION 


Organizations  for  whom  the  document  was  prepared.  e.g.  Establishment  sponsoring 
a  contractor's  report,  or  tasking  agency,  are  entered  in  section  8.) 

Defence  and  Civil  Institute  of  Environmental 
Medicine,  1133  Sheppard  Ave  W 
North  York,  Ont,  M3M  3B9 


(overall  security  classification  of  the  document 
including  special  warning  terms  if  applicable) 

Uncles 


3.  TITLE  (the  complete  document  title  as  indicated  on  the  title  page.  Its  classification  should  be  indicated  by  the  appropriate 
abbreviation  (S.C.R  or  U)  in  parentheses  after  the  title.) 

Queuing  'Theory  AnDroach  To  Modelling  The  Dynamics  of  the  Human-Computer  Interface 
(U) 


4.  AUTHORS  (Last  name,  first  name,  middle  initial.  If  military,  show  rank.  e.g.  Doe.  Maj.  John  E.) 


Joyce  M.E.  van  de  Vegte 


5.  DATE  OF  PUBLICATION  (month  and  year  of  publication  of 
document) 


6a.  NO.  OF  PAGES  (total  6b.  NO.  OF  REFS  (total  cited  in 
containing  information.  Include  document) 

Annexes.  Appendices,  etc.) 


6.  DESCRIPTIVE  NOTES  (the  category  of  the  document.  e.g.  technical  report  technical  note  or  memorandum.  If  appropriate,  enter  the  type  of 
report  e.g.  interim,  progress,  summary,  annual  or  finaL  Give  the  inclusive  dates  when  a  specific  reporting  period  is  covered.) 

final  technical  report 


8.  SPONSORING  ACTIVITY  (the  name  of  the  department  project  office  or  laboratory  sponsoring  the  research  and  development  Include  the 
address.) 

DCIEM  (see  1) 


9a.  PROJECT  OR  GRANT  NO.  (if  appropriate,  the  applicable  research  9b.  CONTRACT  NO.  (if  appropriate,  the  applicable  number  under 
and  development  project  or  grant  number  under  which  the  document  which  the  document  was  written) 
was  written.  Please  specify  whether  project  or  grent) 


10a  ORIGINATOR'S  DOCUMENT  NUMBER  (the  official  document  10b.  OTHER  DOCUMENT  NOS.  (Any  other  numbers  which  mey 
number  by  which  the  document  is  identified  by  the  originating  be  assigned  this  document  either  by  the  originator  or  by  the 

activity.  This  number  must  be  unique  to  this  document)  sponsor) 


1 1.  DOCUMENT  AVAILABILITY  (any  limitations  on  further  dissemination  of  the  document  other  than  those  imposed  by  security  classification) 
(  )i  Unlimited  distribution 

(  )  Distribution  limited  to  defence  depertments  and  defence  contractors;  further  distribution  only  as  approved 

(  )  Distribution  limited  to  defence  departments  and  Canadian  defence  contractors;  further  distribution  only  as  approved 

(  )  Distribution  limited  to  government  departments  and  agencies;  further  distribution  only  as  approved 

(  )  Distribution  limited  to  defence  departments;  further  distribution  only  es  approved 

(  )  Other  (please  specify): 


12.  DOCUMENT  ANNOUNCEMENT  (any  limitation  to  the  bibliographic  announcement  of  this  document  This  will  normally  correspond  to 
the  Oocument  Availabilty  (11).  However,  where  further  distribution  (beyond  the  audience  specified  in  11)  is  possible,  a  wider 
announcement  audience  may  be  selected.) 


SCCURITY  CLASSIFICATION  OF  FORM 


OC003  2/06/87 


SECURITY  CLASSIFICATION  OF  FORM 


13.  ABSTRACT  (  •  brief  and  (actual  summary  of  the  document  It  may  also  appear  alsewhera  in  tha  body  of  the  document  itself.  It  is  hig 
desirable  that  the  abstract  of  classified  documents  be  unclassified.  Each  paragraph  of  the  abstract  shall  begin  with  an  indication  of  the 
security  classification  of  the  information  in  the  paragraph  (unless  the  document  itself  is  unclassified)  represented  as  (S).  (C).  (R).  or  (U). 

It  is  not  necessary  to  include  here  abstracts  in  both  office!  languages  unless  the  text  is  bilingual). 


Abstract 

This  paper  studies  a  model  of  the  human-computer  interface  based  on  the  idea  of  a  message 
passing  from  one  partner  (the  human)  to  the  other  (the  computer)  by  means  of  an  arbitrary 
number  of  layers  which  represent  levels  of  abstraction  of  the  message.  The  model  uses  a 
queuing  theory  formulation  and  assumes  Poisson  arrival  and  service  characteristics  to 
describe  the  movement  of  packets  through  the  interface  and  to  develop  a  criterion  for  net¬ 
work  stability.  Simulations  are  included  to  illustrate  some  of  the  theoretical  results  obtained. 


14.  KEYWORDS.  DESCRIPTORS  or  IDENTIFIERS  (technically  meaningful  terms  or  short  phrases  that  characterize  a  document  and  could  be 
helpful  in  cataloguing  the  document  They  should  be  selected  so  that  no  security  classification  is  required.  Identifiers,  such  es  equipment 
model  designation,  trade  name,  military  project  code  name,  geographic  location  may  also  be  included.  If  possible  keywords  should  be  selecte 
from  a  published  thesaurus.  e.g-  Thesaurus  of  Engineering  and  Scientific  Terms  (TEST)  and  that  thesaurus-identified.  It  it  is  not  possible  ts 
select  indexing  terms  which  are  Unclassified,  the  classification  of  each  should  be  indicated  as  with  the  titleJ 


SECURITY  CLASSIFICATION  OF  FORM 


